Lucene search

K
prionPRIOn knowledge basePRION:CVE-2019-10150
HistoryJun 12, 2019 - 2:29 p.m.

Authentication flaw

2019-06-1214:29:00
PRIOn knowledge base
www.prio-n.com
11

5.9 Medium

AI Score

Confidence

High

0.008 Low

EPSS

Percentile

82.2%

It was found that OpenShift Container Platform versions 3.6.x - 4.6.0 does not perform SSH Host Key checking when using ssh key authentication during builds. An attacker, with the ability to redirect network traffic, could use this to alter the resulting build output.

5.9 Medium

AI Score

Confidence

High

0.008 Low

EPSS

Percentile

82.2%